TechCrunch News 2024年11月19日
US extradites Russian accused of extorting millions in Phobos ransomware payments
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

美国政府成功引渡了一名涉嫌为臭名昭著的Phobos勒索软件运营提供关键管理的俄罗斯黑客Evgenii Ptitsyn。Ptitsyn被指控管理Phobos勒索软件的销售、分发和运营,该软件被网络犯罪分子用于发动网络攻击,并从全球超过1000名公共和私人受害者处勒索了至少1600万美元。受害者包括美国联邦机构的会计和咨询服务提供商、医疗保健提供商、执法工会、国防部和能源部的承包商以及儿童医院等。Ptitsyn于2020年加入Phobos运营,帮助开发和分发勒索软件,并与其他同谋者在网络犯罪论坛上免费发布该软件,然后向其附属人员收取费用以获取解密密钥。美国司法部副部长Lisa Monaco表示,Ptitsyn的引渡是全球执法机构通力合作的结果,他将面临与电汇欺诈、计算机欺诈和敲诈勒索相关的指控,可能面临数十年的监禁。

🤔美国政府成功引渡了俄罗斯黑客Evgenii Ptitsyn,他被指控是Phobos勒索软件运营的关键管理者。

💸Phobos勒索软件被用于发动网络攻击,从全球超过1000名受害者处勒索了至少1600万美元,受害者包括美国联邦机构、医疗机构、执法机构等。

📅Ptitsyn于2020年加入Phobos运营,帮助开发和分发勒索软件,并与同谋者在网络犯罪论坛上免费发布该软件,然后向附属人员收取解密密钥费用。

💰受害者支付的赎金从12,000美元到300,000美元不等,其中一家医疗保健提供商支付了2,300美元获取解密密钥。

🚨Ptitsyn面临电汇欺诈、计算机欺诈和敲诈勒索等多项指控,如果罪名成立,可能面临数十年的监禁。

The U.S. government has secured the extradition of an alleged Russian hacker who allegedly served as a key administrator of the prolific Phobos ransomware operation. 

Prosecutors said Monday that Evgenii Ptitsyn, 42, was recently extradited from South Korea to appear in a Maryland federal court on November 4. Ptitsyn is accused of administering the sale, distribution, and operation of Phobos, a type of ransomware operation that was used by cybercriminals to launch cyberattacks and extort at least $16 million from over a thousand public and private victims globally. 

An newly unsealed indictment reveals that these victims include a Maryland-based company that provided accounting and consulting services to federal agencies; several Maryland-based healthcare providers; a New York-based law enforcement union; an Illinois-based contractor for the U.S. Department of Defence and the U.S. Department of Energy; and a North Carolina-based children’s hospital. 

The unnamed companies listed in the indictment against Ptitsyn paid ransoms ranging from $12,000 to $300,000, with one of the victims — an unnamed Maryland-based healthcare provider —  paying $2,300 to receive a decryption key to regain access to their maliciously scrambled files.

According to the indictment, Ptitsyn joined the Phobos operation in 2020. Prosecutors say Ptitsyn helped to develop and distribute the ransomware to affiliates, who work as contractors, who use the ransomware to launch attacks.

Ptitsyn and his co-conspirators allegedly advertised the Phobos ransomware for free through posts on cybercrime forums, but would then charge their affiliates around $300 to receive the decryption key to access the data that they stole from their victim.

The feds said they caught Ptitsyn in part because the decryption fees were transferred to a cryptocurrency wallet “in the possession and control of Ptitsyn,” the indictment states. 

Other cybercrime groups, including 8Base, have been known to use the Phobos ransomware in their attacks. 

“Evgenii Ptitsyn allegedly extorted millions of dollars of ransom payments from thousands of victims and now faces justice in the United States thanks to the hard work and ingenuity of law enforcement agencies around the world — from the Republic of Korea to Japan to Europe and finally to Baltimore, Maryland,” said U.S. deputy attorney general Lisa Monaco in remarks. 

Ptitsyn is charged with wire fraud conspiracy, wire fraud, conspiracy to commit computer fraud and abuse, and multiple counts of causing intentional damage to protected computers and extortion. If convicted, Ptitsyn faces decades in prison.

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

Phobos勒索软件 网络犯罪 黑客 引渡 网络安全
相关文章